Back to glossary

Data Exfiltration

Data exfiltration is the unauthorized transfer of data from a computer or other device. Threat actors typically exfiltrate data after a breach, while malicious insiders (also known as insider threats) may also gain unauthorized access to the data. Data thieves can exfiltrate data manually if they have physical access to it or, more commonly, by using malicious software to remotely automate the process.

To prevent data exfiltration, organizations should require strong passwords and multi-factor authentication (MFA), continuously monitor outbound data transfers, enforce strict access controls, establish threat detection procedures and response strategies, encrypt sensitive data, and employ data loss prevention (DLP) technologies. Employee training to recognize social engineering and phishing attacks can also reduce the risk of data exfiltration.

Stay in the Know

Get VikingCloud Resources, News & Views delivered straight to your inbox.

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

Blogs

Stay up-to-date on the latest happenings in Cybersecurity and PCI Compliance.

Aug 18, 2026
Blog
HIPAA Compliance
Blog
Aug 18, 2026

HIPAA Penetration Testing: A Complete Compliance Guide

Learn More
Aug 13, 2026
Blog
HIPAA Compliance
Blog
Aug 13, 2026

What is a HIPAA Security Rule Gap Analysis and Why It Matters Now

Learn More
Aug 11, 2026
Blog
HIPAA Compliance
Blog
Aug 11, 2026

HIPAA Vulnerability Scanning Requirements and What to Expect

Learn More